CVE-2026-8181: WordPress Plugin Auth Bypass Flaw
A CVSS 9.8 authentication bypass in Burst Statistics exposes 200,000+ WordPress sites. Here is what engineers need to know and do right now.
May 26, 2026
WordPress & Headless MigrationCriztec is now Zorinto. Same team, new name. Learn more →
A CVSS 9.8 authentication bypass in Burst Statistics exposes 200,000+ WordPress sites. Here is what engineers need to know and do right now.